You are here

Agreguesi i feed

next-20260903: linux-next

Kernel Linux - Enj, 03/09/2026 - 6:43md
Version:next-20260903 (linux-next) Released:2026-09-03

Google Releases Gemini 3.8 Flash, Its Third Flash Model In Six Weeks

Slashdot - Enj, 03/09/2026 - 6:00md
Google released Gemini 3.8 Flash, its third Flash model in six weeks, claiming it's their best reasoning and coding model yet (topping the DeepSWE leaderboard). Ars Technica reports: Gemini 3.8 Flash comes in two variations. There's the standard Flash, which Google describes as a "workhorse" model that's good for anything from agentic tasks to software development. Then we have Gemini 3.8 Flash Cyber, which runs on the same foundations but has been tuned for vulnerability detection and mitigation. For developers, Google has the same pitch as it did for the 3.7 Flash release just a couple of weeks ago. API access to the model is available at an "introductory rate" through the end of the year: $0.75 per million input tokens and $3.75 per million output tokens. The regular price will be $1.50 / $7.50, but it's likely there will be new models available long before the price changes. Google probably sees the lower prices as a necessity given that other AI labs have recently dropped token pricing to keep increasingly wary businesses engaged with AI tools. [...] Gemini 3.8 Flash will be available across the Google ecosystem starting today, but Gemini 3.8 Flash Cyber is currently limited to trusted testers and governments. Like the past Flash release, you'll need a Pro or Ultra subscription to access Gemini 3.8 Flash in the Gemini app, but you can always visit AI Studio if you want to tinker with it for free.

Read more of this story at Slashdot.

Google Engineer Accused of Polymarket Insider Trading Says He Was Just Gambling

Slashdot - Enj, 03/09/2026 - 5:00md
An anonymous reader quotes a report from Wired: Michele Spagnuolo, the Google engineer arrested in May by U.S. authorities for alleged insider trading on Polymarket, is making a new bold bet. On Wednesday, his legal team filed a motion to dismiss the charges against him. Spagnuolo isn't outright denying that he made money using internal information from Google. Instead, his legal team says that the wagers were not financial instruments subject to regulation by the United States' Commodities Exchange Act but rather good old-fashioned international betting that the U.S. has no authority over. Spagnuolo, who has been placed on leave from Google, is accused of committing commodities fraud, wire fraud, and money laundering. Using the alias "AlphaRaccoon," he allegedly made a series of wagers on Polymarket's flagship platform that resulted in profits totaling over $1.2 million. According to the criminal complaint, "AlphaRaccoon" correctly wagered that the singer D4vd, who gained notoriety for his suspected connection to a grisly killing, would be Google's most-searched person of the year in 2025. (D4vd was later charged with murder; he pleaded not guilty.) [...] Spagnuolo's lawyers argue that defining swaps to include wagers like who the most-searched person on Google will be each year "would fly in the face of the statute's purpose and history" and lead to "absurd results." They say it would make it so that any wager in the world, from a charity raffle to a local Ping-Pong match, could be classified as a financial instrument. "Spagnuolo is basically making the same argument as the states that are suing prediction markets," says a financial services regulation expert Todd Phillips. "This is the issue that will likely go up to the Supreme Court." Featured Video In addition to disputing the idea that prediction markets offer swaps, Spagnuolo's legal team argues that the U.S. government had no jurisdiction over him in the first place because he's a non-U.S. citizen who was wagering on a non-U.S. platform. Although Polymarket is headquartered in New York, the company's flagship prediction market is banned in the United States and technically is administered by an ostensibly Panama-based entity known as Adventure One QSS. Spagnuolo was living in Zurich, Switzerland, when he allegedly made the Google-related trades on Polymarket. "The extraterritorial argument is interesting and raises the question of whether the U.S. should be the world's prediction markets cop," Philipps says. Spagnuolo's team also claims that the charges should be dismissed because the internal information he supposedly leveraged did not have any commercial value to Google.

Read more of this story at Slashdot.

Internet Routing Attack Sent Malicious Updates to Linux Servers

LinuxSecurity.com - Enj, 03/09/2026 - 3:06md
Virtualizor has confirmed that a BGP hijack redirected traffic for part of its update infrastructure and allowed an attacker-controlled server to deliver a malicious update package to a small number of installations. The company disclosed the incident on August 31, 2026, after the routing diversion ran across two periods between August 28 and August 30.

Why DNS Attacks Can Outrun Linux Security Monitoring

LinuxSecurity.com - Enj, 03/09/2026 - 3:00md
A Linux host intrusion prevention system can fail even when the protected server still has spare CPU. If its logging path cannot record and move events as quickly as an attacker creates them, the control loses the evidence it needs to block the source.

Linux Patch Addresses Network Code Bug That Reads Past Memory

LinuxSecurity.com - Enj, 03/09/2026 - 2:52md
A Linux kernel patch series submitted on Sep 1, 2026, stops an out-of-service Logical Link Control socket from indexing below two connection-state tables. The bug produced Kernel Address Sanitizer and Undefined Behavior Sanitizer reports for a global out-of-bounds read.

Continuous Linux Security: Why a Hardening Checklist Is Not Enough

LinuxSecurity.com - Enj, 03/09/2026 - 2:39md
A Linux server can be carefully hardened before it reaches production and still become less secure over time. Hardening means reducing unnecessary services, accounts, permissions, and other ways into the system. That work matters, but it describes the server at one point in time. Six months later, a new application may be installed, a firewall port opened for troubleshooting, an administrator given sudo access to run commands with elevated privileges, or a software update may have changed a c...

Perplexity Will Open Source Its Faster Lily AI Engine For Apple Silicon

Slashdot - Enj, 03/09/2026 - 1:00md
BrianFagioli writes: Perplexity has built a local artificial intelligence engine designed specifically for Apple silicon and the Qwen3.6-35B-A3B model. Called Lily, the engine uses a Rust runtime and custom Metal kernels, with neither PyTorch nor MLX in its execution path. Perplexity says Lily averaged 23 percent faster prompt processing and 35 percent faster token generation than MLX-LM on an M5 Max MacBook Pro with 128GB of unified memory. Lily is more specialized than MLX-LM, which supports a much wider range of models and architectures. Perplexity says it plans to release Lily as open source, but the code is not available yet, leaving its performance claims dependent on internal testing for now.

Read more of this story at Slashdot.

Instrument Clusters Are Now Paid Extras In Two Hyundai Models

Slashdot - Enj, 03/09/2026 - 9:00pd
"Enshittification of car controls [is] rapidly accelerating," writes longtime Slashdot reader sinij, pointing to a new report from Car and Driver. From the report: Remember when iPhones used to come with free headphones and a phone charger (including the wall plug)? It didn't feel so much like Apple giving you free goodies as it did that the company was providing you with the relevant hardware to use the device. Apple stopped including headphones and charging blocks in 2020. Now, Hyundai is pulling some of its standard hardware from the box, at least for two models. Hyundai is charging customers extra for a driver's display in the new Elantra generation (more specifically, the Korea-market Avante), as well as the Ioniq 3, Motor1 reported. Both models feature Pleos Connect, Hyundai's new infotainment setup that pairs a center touchscreen with a slim 9.9-inch instrument cluster mounted above the dashboard -- except where it doesn't. In its domestic market, the instrument cluster screen is offered as a 350,000 won ($255) option for the base trim. Not the most expensive optional extra in the world, but still kind of a slap in the face for a feature traditionally viewed as standard fare. Things are more expensive for the electric Ioniq 3. In the EV's case, the base trim gives customers the full Tesla-screen experience, meaning if customers want the driver's display, they'll need to fork over the additional $5000 necessary to move up to the next-level trim. [...] Hyundai plans to have the setup equipped in 20 million cars globally by the end of the decade.

Read more of this story at Slashdot.

Global Heating Will Hit At Least 1.8C, UN Warns, and There Are 'No Good Outcomes'

Slashdot - Enj, 03/09/2026 - 5:30pd
An anonymous reader quotes a report from The Guardian: Global heating will reach at least 1.8C under even the most optimistic future, well beyond the Paris agreement goal of 1.5C, according to a UN report that warns every fraction of temperature rise intensifies destructive extreme weather, glacier melt, ecosystem loss, and island and coastal city submersion. The report by the Nairobi-based UN Environment Program confirmed overshooting the 1.5C goal inscribed in the landmark Paris agreement of 2015 was now "unavoidable" and, despite some progress in addressing the human-caused climate crisis driven by burning fossil fuels, likely in the next few years. It said: "There are no good outcomes above 1.5C." Heating of up to 3C above preindustrial levels could lead to glaciers losing more than a quarter of their mass by 2100, raising sea levels by up to 13cm. Global food production could decline by up to 14% by 2050 if there are not effective strategies to adapt. Human health, water supplies, nature, cities, infrastructure and economies could all be severely damaged. Some losses would be irreversible. Many communities may have to relocate or change their livelihoods. The report said the best hope for humanity to limit damage was to adopt an "overshoot, peak and decline" pathway that required immediate and sustained greenhouse gas emissions cuts combined with steps to remove carbon dioxide from the atmosphere. It described the goal of net zero emissions -- increasingly politically contentious in some countries -- as "an essential milestone that cannot be skipped" and stressed carbon dioxide removal through steps such as establishing vast new forests must occur alongside, not as an alternative to, deep cuts in fossil pollution. Crucially, the authors of the report, titled Limiting Overshoot, said the average global temperature could be returned to 1.5C this century only if heating stayed below about 1.8C. They warned nature's capacity to store carbon was uncertain and would shrink the more the planet heats. [...] The report's authors cited earlier work that found limiting heating to about 1.8C required global emissions to be halved by 2035. They said existing national policies were projected to lead to at least 2.3C heating, but it would still be possible to limit stay below 2C if countries delivered on net zero emissions commitments by mid-century.

Read more of this story at Slashdot.

Why Patched Linux Servers Still Fail a Penetration Test

LinuxSecurity.com - Enj, 03/09/2026 - 1:55pd
A patched Linux server can still fail a penetration test because patch status cannot show whether an attack path remains open.

How to Prevent DNS Leaks and Secure Proxy Credentials on Linux Systems

LinuxSecurity.com - Enj, 03/09/2026 - 1:25pd
Using a proxy on Linux changes how web traffic reaches its destination, but it does not automatically protect every part of the connection. DNS requests may still leave through the system’s normal resolver, while proxy usernames and passwords can remain exposed in scripts or local files.

FCC Plans Robocall Scorecard to Grade Phone Companies On Spam Call Blocking

Slashdot - Enj, 03/09/2026 - 1:00pd
The FCC is proposing (PDF) a public "robocall mitigation scorecard" that would grade phone companies on how well they block illegal spam calls while avoiding false positives on the legitimate ones. "The Scorecard will empower consumers and encourage providers to continue to combat illegal robocalls by providing the public with an assessment of the effectiveness of voice service providers' efforts to protect consumers from illegal robocalls," the FCC Consumer and Governmental Affairs Bureau said in a public notice. Ars Technica reports: The scorecards could include call-blocking statistics along with data on customer complaints and enforcement actions. The FCC said scorecards could grade providers on a number scale, with letter grades, or by classifying providers as low risk, medium risk, or high risk. The proposed tool would rate wireless, wireline, and VoIP providers on efforts to block robocalls and their "actual results in protecting [consumers] from illegal robocalls," the FCC said. "In practice, that means moving beyond a simple administrative checklist (i.e., did the provider file the right paperwork, did they offer the right tools) and toward a composite set of metrics that reflects both operational practices and measurable outcomes, including how often legitimate calls are blocked." Whether the tool is useful for consumers will depend on how it's designed, how easy each provider's scorecard is to find, and what data sources it relies on. The proposed scorecard would apply to domestic voice service providers with retail customers, but not telcos that operate solely as wholesale or intermediate providers. "Combatting the scourge of illegal robocalls remains the FCC's top consumer protection priority... As proposed in today's public notice, the FCC aims to develop a scorecard that will give consumers more information about the measures providers are taking to fight illegal robocalls, and it will also incentivize providers to improve their efforts," FCC Chairman Brendan Carr said in a press release.

Read more of this story at Slashdot.

1Password Wades Into a Right-Wing Mess After Funding a Linux Project

Slashdot - Enj, 03/09/2026 - 12:00pd
1Password is facing customer and internal employee backlash after pledging $300,000 to support a Linux distro created by David Heinemeier Hansson, who has regularly published racist and anti-immigrant rhetoric. "The popular password manager is now a 'distinguished corporate patron' of Omacom, the nonprofit foundation that oversees a popular Linux distribution known as Omarchy," reports The Verge. From the report: One viral blog post declared that 1Password "Supports the Ethnic Cleansing of Europe" because of the donation. Others on social media asked for suggestions for alternative password managers so they would not support the funding of a project from Heinemeier Hansson, better known as DHH. The donation has also resulted in internal pushback from employees of 1Password who are disappointed by the affiliation, The Verge has learned. 1Password CEO David Faugno and cofounder Roustem Karimov have since posted internal messages addressing what Faugno describes as "concerns, both internally and externally" that have been raised "due to the polarizing nature" of DHH. DHH is a Danish entrepreneur best known for creating Ruby on Rails, Basecamp, and the Hey email client. Omarchy is DHH's "opinionated" version of Linux, meaning it's Linux the way he likes to use it. It's based on Arch Linux, with certain apps that install by default. It's also, apparently, one of 1Password's big customer environments. [...] In an internal Slack message obtained by The Verge, 1Password's Karimov downplayed the overtly racist comments from DHH, telling staff the following: "As I said, people have different personal opinions. You believe in your heart that DHH is evil, that you have the moral high ground, and that nothing will change your mind. However, not everyone believes that. It is not fair to claim a monopoly and ostracize team members who might disagree with you. There are people who are afraid to speak up simply because they will be personally attacked." 1Password CEO Faugno took a different approach, trying to reassure staff that "1Password does not endorse hateful, dehumanizing, or exclusionary views, including those shared publicly by DHH." Nonetheless, it seems the company has sacrificed a moral position for a "mission-driven" position. In the same message to staff, Faugno says "the scale and growth of [Omarchy's] use among our customers is significant -- Omarchy has grown to be the second most used Linux distribution among 1Password users." Faugno then tries to create distance, telling staff that its contribution is "to the Omacom Foundation, not an individual." Still, he says "we recognize that Omarchy is associated with DHH, its founder. Our donation is not in any way an endorsement of his personal views or conduct."

Read more of this story at Slashdot.

Faqet

Subscribe to AlbLinux agreguesi